VYPR

apk package

chainguard/imagemagick-6

pkg:apk/chainguard/imagemagick-6

Vulnerabilities (65)

  • CVE-2014-9826CriMar 30, 2017
    affected < 0fixed 0

    ImageMagick allows remote attackers to have unspecified impact via vectors related to error handling in sun files.

  • CVE-2017-5506HigMar 24, 2017
    affected < 0fixed 0

    Double free vulnerability in magick/profile.c in ImageMagick allows remote attackers to have unspecified impact via a crafted file.

  • CVE-2016-10062MedMar 2, 2017
    affected < 0fixed 0

    The ReadGROUP4Image function in coders/tiff.c in ImageMagick does not check the return value of the fwrite function, which allows remote attackers to cause a denial of service (application crash) via a crafted file.

  • CVE-2016-5841CriDec 13, 2016
    affected < 0fixed 0

    Integer overflow in MagickCore/profile.c in ImageMagick before 7.0.2-1 allows remote attackers to cause a denial of service (segmentation fault) or possibly execute arbitrary code via vectors involving the offset variable.

  • CVE-2016-5118CriJun 10, 2016
    affected < 0fixed 0

    The OpenBlob function in blob.c in GraphicsMagick before 1.3.24 and ImageMagick allows remote attackers to execute arbitrary code via a | (pipe) character at the start of a filename.

Page 4 of 4